Safeguard Administrator's Manual (G06.29+, H06.08+, J06.03+)
Controlling User Access
Safeguard Administrator’s Manual—523317-029
2-8
Adding Users to the System
PASSWORD-EXPIRY-
GRACE
Specifies the number of days 
after a password expires that 
the user can change his or her 
password during logon. 
The default value is no grace 
period.
AUDIT-AUTHENTICATE-
PASS
Specifies the conditions under 
which the Safeguard software 
creates an audit record of 
successful attempts to log on 
with this user name.
The default value is no 
auditing. 
AUDIT-AUTHENTICATE-
FAIL
Specifies the conditions under 
which the Safeguard software 
creates an audit record of 
unsuccessful attempts to log 
on with this user name.
The default value is no 
auditing.
AUDIT-MANAGE-PASS Specifies the conditions under 
which the Safeguard software 
creates an audit record of 
successful attempts to change 
or display this user 
authentication record.
The default value is no 
auditing.
AUDIT-MANAGE-FAIL Specifies the conditions under 
which the Safeguard software 
creates an audit record of 
unsuccessful attempts to 
change or display this user 
authentication record.
The default value is no 
auditing.
AUDIT-USER-ACTION-
PASS
Specifies the conditions under 
which the Safeguard software 
creates an audit record of 
successful events performed 
by this user.
When the Safeguard global 
configuration attributes 
AUDIT-CLIENT-OSS and 
AUDIT-OSS-FILTER are 
enabled, the AUDIT-USER-
ACTION-PASS attribute takes 
effect for OSS auditing.
The default value is no 
auditing.
Table 2-1. User Security Attributes and Default Attribute Values (page 2 of 5)
Attribute Description Default Value
1
 The STATIC-FAILED-LOGON-RESET-TIME attribute is supported only on systems running H06.10 and later 
H-series RVUs and G06.32 and later G-series RVUs.










